CVE-1999-1139

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Sep 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-1139 is a vulnerability affecting the Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier versions. Malicious local users can exploit this flaw by creating a symlink to the IOERROR.mytty file, allowing them to overwrite arbitrary files and ultimately gain root privileges. This vulnerability poses a significant risk, as it enables unauthorized users to gain elevated access to the system. HP-UX users are advised to apply the available patch or upgrade to a newer version to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • HP-UX
  • HP-UX family of operating systems

Affected Vendors

  • HP